KLA12122
Multiple vulnerabilities in Microsoft Browser

Обновлено: 16/03/2021
Дата обнаружения
15/03/2021
Уровень угрозы
Warning
Описание

Multiple vulnerabilities were found in Microsoft Browser. Malicious users can exploit these vulnerabilities to cause denial of service, execute arbitrary code.

Below is a complete list of vulnerabilities:

  1. A heap buffer overflow vulnerability in tab groups can be exploited to cause denial of service.
  2. A use after free vulnerability in WebRTC can be exploited to cause denial of service or execute arbitrary code.
  3. A use after free vulnerability in Blink can be exploited to cause denial of service or execute arbitrary code.
Пораженные продукты

Microsoft Edge (Chromium-based)

Решение

Install necessary updates from the KB section, that are listed in your Windows Update (Windows Update usually can be accessed from the Control Panel)

Первичный источник обнаружения
CVE-2021-21192
CVE-2021-21191
CVE-2021-21193
Оказываемое влияние
?
ACE 
[?]

DoS 
[?]
Связанные продукты
Microsoft Edge
CVE-IDS
Microsoft official advisories
Microsoft Security Update Guide
Узнай статистику распространения уязвимостей в твоем регионе